Skip to main content


LogRhythm security intelligence.

The LogRhythm pack provides security operations to deliver comprehensive and actionable information into your enterprise IT environment.

What does this pack do?

  • Execute queries on logs.
  • Retrieve case summaries, create new cases, or update the properties of a case.
  • Get host information, add new hosts and update host status, and query and update alarms.
  • Fetch cases and alarms as incidents.
  • Retrieve, update, and remove tags.
  • Get list details, add or remove items from lists.

This pack includes the following playbooks:

  • Logrhythm Alarm Handling playbook that is triggered when fetching a LogRhythm alarm incident.
  • LogRhythmRestV2 - Search query playbook that retrieves query results.


Cortex XSOAR


CertificationRead more
Supported ByCortex XSOAR
CreatedSeptember 23, 2020
Last ReleaseSeptember 29, 2022

Content packs are licensed by the Publisher identified above and subject to the Publisher’s own licensing terms. Palo Alto Networks is not liable for and does not warrant or support any content pack produced by a third-party Publisher, whether or not such packs are designated as “Palo Alto Networks-certified” or otherwise. For more information, see the Marketplace documentation.